搜尋 圖片 地圖 Play YouTube 新聞 Gmail 雲端硬碟 更多 »
進階專利搜尋 | 網頁圖片 | 網頁紀錄 | 登入

專利

  
[graphic][merged small]

(12) United States Patent ao) Patent No.: Us 7,103,185 Bi

Srivastava et al. (45) Date of Patent: *Sep. 5,2006

(54) METHOD AND APPARATUS FOR

DISTRIBUTING AND UPDATING PRIVATE
KEYS OF MULTICAST GROUP MANAGERS
USING DIRECTORY REPLICATION

FOREIGN PATENT DOCUMENTS

(75) Inventors:

(73) Assignee:

( * ) Notice:

(56)

[blocks in formation]
[blocks in formation]
[blocks in formation]
[blocks in formation]

An approach for establishing secure multicast communication among multiple multicast proxy service nodes is disclosed. The multicast proxy service nodes, which can be distributed throughout an enterprise domain, are organized in a logical tree that mimics the logical tree arrangement of domains in a directory server system. The attributes of the multicast proxy service nodes include the group session key and the private keys of the multicast proxy service nodes that are members of the multicast or broadcast groups. The private keys provide unique identification values for the multicast proxy service nodes, thereby facilitating distribution of such keys. Because keys as well as key version information are housed in the directory, multicast security can be achieved over any number of network domains across the entire enterprise. Key information is stored in, and the logical tree is supported by, a directory service. Replication of the directory accomplishes distribution of keys. Multicast proxy service nodes may obtain current key information from a local copy of the replicated directory.

(Continued)

27 Claims, 16 Drawing Sheets

Page 2

[merged small][table][merged small][merged small][merged small][merged small][merged small]

Federal Information Processing Standards Publication 185 (Feb. 9, 1994) entitled "U.S. Department of Commernce/ National Institute of Standards and Technology", Escrowed Encryption Standard, Category: Telecommunications Security.

Cylink Corporation Resouces entitled "Alternatives to RSA: Using Diffie-Hellman with DSS".

Alfred J. Menezes, "Handbook of Applied Cryptography," 1997, CRC Press LLC, pp. 519-520. Bruce Schneier, "Applied Cryptography," 1996, John Wiley & Sons, Inc., pp. 33-35 and 47-65.

Robert Orfali et al, "The Essential Distributed Objects

Survival Guide," 1996, pp. 448-449.

David Chappell, "Understanding Microsoft Windows 2000

Distributed Services," 2000, pp. 319-324.

Robert Orfali et al, "Client/Server Survival Guide Third

Edition," 1999, p. 488.

Koblitz, Neal, A Course in Number Theory and Cryptography, 1994, Springer-Verlag New York Inc. 2nd Edition, 8 pages.

U.S. Patent Office, Office Action from application 09/407, 785 (cover page and Office Action summary), dated Jan. 14, 2004, 2 pages.

IEEE Transactions On Information Theory, vol. IT-22, No. 6 (Nov. 1976) entitled 'New Directions in Cryptography by Whitfield Diffie and Martin E. Hellman. Proceedings of the IEEE, vol. 76, No. 5 (May 1988 (entitled "The First Ten Years of Public-Key Cryptography" by Whitfield Diffie.

MIT/LCS/TM-537, Laboratory for Computer Science (Aug. 1995) entitled "Guaranteed Partial Key-Escrow", Handout #13, by Silvio Micali.

Proceedings of the Fourth Annual Conference on Computer and Communications Security, ACM, 1997 (Nov. 1996) entitled "Verifiable Partial Key Escrow" by Mihir Bellare and Shafi Goldwasser.

Federal Information Processing Standards Publication 185 (1994 Feb. 9) entitled "U.S. Department of Commernce/ National Institute of Standards and Technology", Escrowed Encryption Standard, Category: Telecommunications Security.

Cylink Corporation Resources entitled "Alternatives to RSA: Using Diffie-Hellman with DSS".

* cited by examiner

[graphic]
[merged small][merged small][merged small][merged small][graphic]
« 上一頁繼續 »